Papers
Topics
Authors
Recent
Gemini 2.5 Flash
Gemini 2.5 Flash
169 tokens/sec
GPT-4o
7 tokens/sec
Gemini 2.5 Pro Pro
45 tokens/sec
o3 Pro
4 tokens/sec
GPT-4.1 Pro
38 tokens/sec
DeepSeek R1 via Azure Pro
28 tokens/sec
2000 character limit reached

Security, extensibility, and redundancy in the Metabolic Operating System (2401.01357v1)

Published 11 Dec 2023 in cs.CR and cs.OS

Abstract: People living with Type 1 Diabetes (T1D) lose the ability to produce insulin naturally. To compensate, they inject synthetic insulin. One common way to inject insulin is through automated insulin delivery systems, which use sensors to monitor their metabolic state and an insulin pump device to adjust insulin to adapt. In this paper, we present the Metabolic Operating System, a new automated insulin delivery system that we designed from the ground up using security first principles. From an architecture perspective, we apply separation principles to simplify the core system and isolate non-critical functionality from the core closed-loop algorithm. From an algorithmic perspective, we evaluate trends in insulin technology and formulate a simple, but effective, algorithm given the state-of-the-art. From a safety perspective, we build in multiple layers of redundancy to ensure that the person using our system remains safe. Fundamentally, this paper is a paper on real-world experiences building and running an automated insulin delivery system. We report on the design iterations we make based on experiences working with one individual using our system. Our evaluation shows that an automated insulin delivery system built from the ground up using security first principles can still help manage T1D effectively. Our source code is open source and available on GitHub (link omitted).

Definition Search Book Streamline Icon: https://streamlinehq.com
References (43)
  1. Mach: A new kernel foundation for unix development. 1986.
  2. Securing insulin pump system using deep learning and gesture recognition. In 2018 17th IEEE International Conference On Trust, Security And Privacy In Computing And Communications/12th IEEE International Conference On Big Data Science And Engineering (TrustCom/BigDataSE), pages 1716–1719. IEEE, 2018.
  3. Multivariate models of blood glucose prediction in type1 diabetes: A survey of the state-of-the-art. Current Pharmaceutical Biotechnology, 24(4):532–552, 2023.
  4. Tear glucose analysis for the noninvasive detection and monitoring of diabetes mellitus. The ocular surface, 5(4):280–293, 2007.
  5. Trends in diabetic ketoacidosis hospitalizations and in-hospital mortality—united states, 2000–2014. Morbidity and Mortality Weekly Report, 67(12):362, 2018.
  6. B Wayne Bequette. A critical assessment of algorithms and challenges in the development of a closed-loop artificial pancreas. Diabetes technology & therapeutics, 7(1):28–47, 2005.
  7. Glucose management indicator (gmi): a new term for estimating a1c from continuous glucose monitoring. Diabetes care, 41(11):2275–2280, 2018.
  8. Adam Brown. 42 factors that affect blood glucose?! a surprising update, 2022. https://diatribe.org/42-factors-affect-blood-glucose-surprising-update.
  9. Multicenter trial of a tubeless, on-body automated insulin delivery system with customizable glycemic targets in pediatric and adult participants with type 1 diabetes. Diabetes Care, 44(7):1630–1640, 2021.
  10. Design challenges for secure implantable medical devices. In Proceedings of the 49th annual design automation conference, pages 12–17, 2012.
  11. Performance of the Insulin-Only iLet Bionic Pancreas and the Bihormonal iLet Using Dasiglucagon in Adults With Type 1 Diabetes in a Home-Use Setting. Diabetes Care, 44(6):e118–e120, 06 2021.
  12. Artificial pancreas: past, present, future. Diabetes, 60(11):2672–2682, 2011.
  13. Diabetes Control and Complications Trial Research Group. The effect of intensive treatment of diabetes on the development and progression of long-term complications in insulin-dependent diabetes mellitus. New England journal of medicine, 329(14):977–986, 1993.
  14. Philip E Cryer. Severe hypoglycemia predicts mortality in diabetes. Diabetes care, 35(9):1814–1816, 2012.
  15. Type 2 diabetes mellitus. Nature reviews Disease primers, 1(1):1–22, 2015.
  16. National diabetes statistics report, 2023. https://www.cdc.gov/diabetes/data/statistics-report/index.html.
  17. Continuous glucose profiles in healthy subjects under everyday life conditions and after different meals. Journal of diabetes science and technology, 1(5):695–703, 2007.
  18. Saul Genuth. Insights from the diabetes control and complications trial/epidemiology of diabetes interventions and complications study on the use of intensive glycemic treatment to reduce the risk of complications of type 1 diabetes. Endocrine Practice, 12:34–41, 2006.
  19. Global incidence, prevalence, and mortality of type 1 diabetes in 2021 with projection to 2040: a modelling study. The Lancet Diabetes & Endocrinology, 10(10):741–760, 2022.
  20. Secure web browsing with the op web browser. In 2008 IEEE Symposium on Security and Privacy (sp 2008), pages 402–416. IEEE, 2008.
  21. Security and privacy for implantable medical devices. IEEE pervasive computing, 7(1):30–39, 2008.
  22. The performance of μ𝜇\muitalic_μ-kernel-based systems. ACM SIGOPS Operating Systems Review, 31(5):66–77, 1997.
  23. Management of type 1 diabetes with a very low–carbohydrate diet. Pediatrics, 141(6), 2018.
  24. Ultra rapid lispro (lyumjev®) shortens time to recovery from hyperglycaemia compared to humalog® in individuals with type 1 diabetes on continuous subcutaneous insulin infusion. Diabetes, Obesity and Metabolism, 2023.
  25. Hijacking an insulin pump: Security attacks and defenses for a diabetes therapy system. In 2011 IEEE 13th international conference on e-health networking, applications and services, pages 150–156. IEEE, 2011.
  26. Loop. An automated insulin delivery app for ios, built on loopkit. https://github.com/LoopKit/Loop.
  27. LoopKit. Tools for building automated insulin delivery systems on ios. https://github.com/LoopKit.
  28. On the feasibility of cryptography for a wireless insulin pump system. In Proceedings of the Sixth ACM Conference on Data and Application Security and Privacy, pages 113–120, 2016.
  29. Correlation between sweat glucose and blood glucose in subjects with diabetes. Diabetes technology & therapeutics, 14(5):398–402, 2012.
  30. OpenAPS. The open artificial pancreas system project. https://github.com/openaps.
  31. A secure insulin infusion system using verification monitors. In Proceedings of the 19th ACM-IEEE International Conference on Formal Methods and Models for System Design, pages 56–65, 2021.
  32. A review of the security of insulin pump infusion systems. Journal of diabetes science and technology, 5(6):1557–1562, 2011.
  33. Sugar surfing in practice. AADE in Practice, 7(6):26–30, 2019.
  34. Sugar Surfing: How to manage Type 1 diabetes in a modern world. MediSelf Press Sausalito, CA, 2015.
  35. Site isolation: Process separation for web sites within the browser. In 28th USENIX Security Symposium (USENIX Security 19), pages 1661–1678, 2019.
  36. Securing embedded user interfaces: Android and beyond. In 22nd USENIX Security Symposium (USENIX Security 13), pages 97–112, 2013.
  37. Sok: Security and privacy in implantable medical devices and body area networks. In 2014 IEEE symposium on security and privacy, pages 524–539. IEEE, 2014.
  38. Gary Scheiner. Think like a pancreas: A Practical guide to managing diabetes with insulin. Hachette Go, 2020.
  39. Flexdroid: Enforcing in-app privilege separation in android. In NDSS, 2016.
  40. Feedback control algorithms for automated glucose management in t1dm: the state of the art. The artificial pancreas, pages 1–27, 2019.
  41. Optical methods for sensing glucose. Chemical Society Reviews, 40(9):4805–4839, 2011.
  42. Trust and protection in the illinois browser operating system. In 9th USENIX Symposium on Operating Systems Design and Implementation (OSDI 10), 2010.
  43. The multi-principal os construction of the gazelle web browser. In USENIX security symposium, volume 28, 2009.

Summary

We haven't generated a summary for this paper yet.